Known Vulnerabilities for Config-model by Config-model Project
Listed below are 2 of the newest known vulnerabilities associated with "Config-model" by "Config-model Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-54316 json | Claude Code is an agentic coding tool. From 0.2.54 until 2.1.163, because the hostname huggingface.co was pre-approved as a ... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-49257 json | mcp-pinot is a Python-based Model Context Protocol (MCP) server for interacting with Apache Pinot. In versions 3.0.1 and belo... | Not Provided | 2026-06-18 | 2026-06-22 |
| CVE-2026-47155 json | vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.22.0, vLLM's revision pinning controls d... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-47117 json | OpenMed before 1.5.2 contains a remote code execution vulnerability in the PII privacy-filter model loading path. The privacy... | Not Provided | 2026-06-02 | 2026-07-14 |
| CVE-2026-45001 json | OpenClaw before 2026.4.20 contains a guard bypass vulnerability in the agent-facing gateway config.patch and config.apply end... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-12481 json | A vulnerability in keras-team/keras version 3.14.0 allows for arbitrary code execution due to improper handling of deserializ... | Not Provided | 2026-07-03 | 2026-07-06 |
| CVE-2026-7817 json | Local file inclusion (LFI) and server-side request forgery (SSRF) vulnerabilities in pgAdmin 4 LLM API configuration endpoint... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-5843 json | The MLX inference backend in Docker Model Runner on macOS uses the MLX-LM library, which unconditionally imports and executes... | Not Provided | 2026-05-22 | 2026-05-27 |
| CVE-2026-5241 json | A vulnerability in the LightGlue model loading path of huggingface/transformers version 5.2.0 allows an attacker-controlled m... | Not Provided | 2026-06-03 | 2026-07-22 |
| CVE-2026-4372 json | A critical remote code execution vulnerability exists in all versions of the HuggingFace transformers library prior to versio... | Not Provided | 2026-05-24 | 2026-05-26 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Config-model Project | Config-model | 2.102 | |||
| Application | Config-model Project | Config-model | 2.101 | |||
| Application | Config-model Project | Config-model | 2.100 | |||
| Application | Config-model Project | Config-model | 2.099 | |||
| Application | Config-model Project | Config-model | 2.098 | |||
| Application | Config-model Project | Config-model | 2.097 | |||
| Application | Config-model Project | Config-model | 2.096 | |||
| Application | Config-model Project | Config-model | 2.095 | |||
| Application | Config-model Project | Config-model | 2.094 | |||
| Application | Config-model Project | Config-model | 2.093 | |||
| Application | Config-model Project | Config-model | 2.092 | |||
| Application | Config-model Project | Config-model | 2.091 | |||
| Application | Config-model Project | Config-model | 2.090 | |||
| Application | Config-model Project | Config-model | 2.089 | |||
| Application | Config-model Project | Config-model | 2.088 | |||
| Application | Config-model Project | Config-model | 2.087 | |||
| Application | Config-model Project | Config-model | 2.086 | |||
| Application | Config-model Project | Config-model | 2.085 | |||
| Application | Config-model Project | Config-model | 2.084 | |||
| Application | Config-model Project | Config-model | 2.083 |